HTTP Header & SSL Security Inspector

Inspect domain security headers (HSTS, CSP, X-Frame-Options), SSL certificate status, and cipher suites via open DoH CORS proxies.

100% Client-Side Privacy: All calculations, text transformations, and file operations run locally in your browser. No files or personal inputs are uploaded to external servers.

HTTP Security Headers & SSL Certificate Auditor

Audit modern defensive HTTP headers (HSTS, CSP, Frame Options) and SSL certificate health against OWASP benchmarks.

OWASP Grade Engine
https://
Test Presets:
Overall Security Grade
A+
Score: 95 / 100 Hardened Security Posture

SSL / TLS Certificate Status

TLS 1.3 Active
Cert Validity Valid & Trusted CA Issued
Estimated Expiry ~78 Days Left Auto-Renew Eligible
HTTPS Redirection Enforced (301) HSTS Enabled
curl -I https://cloudflare.com

Defensive Security Headers Checklist

Evaluated against OWASP Secure Headers recommendations
Status Header Name Impact & Protection Observed Value Points

Informational & Educational Disclaimer

This tool is designed for informational and educational estimation purposes only. Calculations are based on user-provided inputs and standard mathematical formulas. For official tax, legal, or financial decisions, please consult certified professionals or official government publications.